Showing cs.CRShow all
2 papers · 1 filter
cs.CR2023
ALPC Is In Danger: ALPChecker Detects Spoofing and Blinding
Anastasiia Kropova, Igor Korkin
The purpose of this study is to evaluate the possibility of implementing an attack on ALPC connection in the Windows operating system through the kernel without closing the connect…
cs.CR2023
RASP for LSASS: Preventing Mimikatz-Related Attacks
Anna Revazova, Igor Korkin
The Windows authentication infrastructure relies on the Local Security Authority (LSA) system, with its integral component being lsass.exe. Regrettably, this framework is not imper…